I got an invitation from gmail team today…

I think they have started sending invitations to the ones who had subscribed to “Receive gmail updates in mail”

so in that mail..there is a link to “unsubscribe yourself” from the list…

I clicked it and tried entering script code in that…it did not work…I tried again by adding ” and then finally it worked after adding “> in variable email

Wanna see it action ?

Check the screenshot

You will see javascript alert saying “Hi”, I am sure you know what all you can do with it ;)

I have already mail google security team about this, I think they should fix this small issue in few hours…

UPDATE: They are so quick….I got reply from them in less than an hour…very impressive…. where our Indiatimes, They have still not replied to my mail…they should learn something from google..

This is what I got from them

Hi Deep,

Thanks for letting us know! We will fix this problem as soon as possible.

Also, if you would like a Google T-shirt, please send us your mailing address and t-shirt size, and we’ll send a shirt.

Thanks
Google Security Team



Category : Security .
Date : February 18, 2005 | RSS 2.0. | trackback

4 Responses

    Vinay says
    19-Feb-2005 at 6:20 am
  1. Thats something cool ! BTW @ Deep ! Order 2 T-Shirts, so that I can take one ;) (lol hehehehe). Google is giving u bribe or compliments ?

    Hhehe…

    Anyway, good one deep !

  2. Deep says
    19-Feb-2005 at 8:46 am
  3. heeh if you would have told me last night then I would have def ordered 2 :D

    take care
    Deep

  4. Vinay says
    20-Feb-2005 at 7:05 am
  5. So whts up deep ? Have the T-Shirts been shipped ? And I wanna ask u permission about posting this as news on my website ?

    Wht do u say ?

  6. Deep says
    20-Feb-2005 at 9:37 am
  7. No problemos :)

    The only condition is, provide the link to this article in the source…. that’s it..

    cheers
    Deep

Leave a comment

XHTML ( You can use these tags): <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> .